Officer's Blog - Page 14
Officer's Blog
Sep 27
What you should do if you think someone has stolen your crypto-assets: A Cheatsheet
For educational purposes only!❗️ Please report scam here:chainabuse.comcryptoscamdb.org1. How to investigate?https://officercia.mirror.xyz/BFzv17UwH6QG4q711NAljtSiP8eKR17daLjTdmAgbHw2. But…how?Well… use breadcrumbs.app + ethtective.com + a letter to RPC provider, + impersonator.xyz combined with tenderly.co fork! And the most important part, to establish clusters use amlbot.com - @cryptoaml_bot investigation (more expensive) regime only! Contact: https://officercia.mirror.xyz/X5Q0uPwvlgZ6BrvC...
Officer's Blog
Sep 26
Slither: An Auditor’s Cornucopia
Greetings, dear readers! Today we would like to start a series of articles on what we call the audit methodology. At first, we want to say that in this series we will focus only on those aspects that can be really useful for auditing and bug bounty hacking and that are not described anywhere.Read an original article via the link below:Slither: An Auditor's Cornucopia
Officer's Blog
Sep 18
What to do when your Web3 project Discord server is hacked & how security audit may prevent it from happening
Greetings dear readers! Today we are going to discuss with you an unusual question, something that we, people who are sometimes far from social networks, have to deal with partly. I am talking about Discord. With its growing popularity and its 350 million users, Discord has now become a magnet for hackers and fraudsters. What can go wrong, you ask? Many things, it turns out — you can even lose your account. ❗️ Please report scam here:chainabuse.comcryptoscamdb.orgSince I myself specialize in ...
Officer's Blog
Sep 14
Violent Attack Vectors in Web3: A Detailed Review
AbstractOperational security professionals work to figure out where their information can be breached. Looking at operations from a malicious third-party’s perspective allows us to spot vulnerabilities we may have otherwise missed so that we can implement proper countermeasures. ❗️ Please report scam here:chainabuse.comcryptoscamdb.orgThe most important thing to understand here is the path of the cyber attack – its vector. Let's take a closer look.Example No. 1 - RAT & Social Engineering...
Officer's Blog
Sep 9
What is ARP spoofing and how to protect against it?
Introduction“Spoof” sounds like a sound effect for an airbag going off in a car or something. Sure, “spoofing” sounds like a funny word but when it comes to security it is anything but. It is the intentional act of camouflaging malicious actors and intent under the guise of legitimate behavior. Spoofing is an advanced persistent threat and if you’re identified as a vulnerable target with multiple weak links and attack vectors, hackers will continue to come after you until you either give them...
Officer's Blog
Sep 9
GitCoin GR15 funding round starts today!
GR15This is my fifth GitCoin round!My grant page:gitcoin.co/grants/3150/defi-web3-developer-roadmapMy grant working repo:github.com/OffcierCia/DeFi-Developer-Road-MapIf you like what I do, please support my biggest work ever with your donations!What’s new for this round?I now have a blog officercia.mirror.xyz with free articles on topics from the mapYou can use the alternative navigation on startme page!Several new languages have been added, many thanks to the volunteers! Please add new trans...
Officer's Blog
Sep 7
Blue Buttons of Death
Authors: twitter.com/ortomichDev, twitter.com/officer_cia Today we will deal with what we in our arthouse understanding of the web3 security is called the “blue button of death” and then Ortem will talk about this type of attack using the signature function, which uses EIP-712 — in our subjective opinion, very underestimated danger! ❗️ Please report scam here:chainabuse.comcryptoscamdb.orgFirst, I would like you to study these 2 sources to get an understanding of the issue before reading arti...
Officer's Blog
Aug 28
An ultimate list of rules any on-chain survivor should follow to stay safe!
Operational security professionals work to figure out where their information can be breached. That said, it doesn’t really matter what industry you’re in. If you have any sensitive, proprietary information at all, then you could very well be a target. This is a good thing to always keep in mind!Disclaimer ❗️All of the information on my blog and on my social media sites, including this article, is strictly for introductory purposes!Looking at operations from a malicious third-party’s perspect...
Officer's Blog
Aug 8
QR Code: An Underestimated Danger
I am very glad that you are reading my article again, dear friends! It would seem, what danger can a QR code pose? It turns out that you can even lose your cryptocurrency as well as fiat money and internet logins because of several attacks, which are based on the mechanics of QR codes. Let's study these attacks and see how we can successfully defend against them! In this article, I will be referring to various amazing Authors and resources I strongly recommend that you separately study t...
Officer's Blog
Aug 1
The most significant milestones in the development of communications
For modern society, instant messaging is a necessary and familiar phenomenon in everyday life. Let me recall the most significant milestones in the development of communications, see how hackers are using the Morse code, its smart contract & blockchain modern implementations and what are the most secure ways of communication exist nowadays!I - The invention of Morse codeDeveloped in the 1830s and 1840s by Samuel Morse and others, the telegraph revolutionized long-distance communication by tra...
Officer's Blog
Jul 30
Officer_CIA: Retrospective
Here is a retrospective of my best articles! You can also track my work entirely at my start.me (always use mullvad.net when visiting it) page: https://start.me/p/QRg5ad/officercia Here is an article written by my good friend Max — in it he made a review of more than a year of my Twitter activity:Officer_CIA X MaxWayld: Content OverviewGreetings dear readers! Today I present to your attention an article written by my good friend Max - in it he made a review of more than a...
Officer's Blog
Jul 28
Laplace's Demon Speaks: Is there a life in blockchain?
Is there a life in blockchain? What does it care about?This is rather atypical article and I want to warn you this kind of experience is new for me and I hope you like it! We'll be looking at several important issues and also look to science in order to substantiate these conclusions.So these are the questions we'll consider: Is there a life in blockchain? What does it think about the most? What is its morality? Is it worth fearing? What can we learn from this Creature?This topic ha...